Advertisement
Guest User

Untitled

a guest
Nov 26th, 2014
147
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 5.87 KB | None | 0 0
  1. nfdump -M /data/nfsen/profiles-data/live/asa-T -R 2014/11/25/nfcapd.201411252050:2014/11/25/nfcapd.201411252115 -o "fmt:%ts %te %nfc %tr %td %evt %xevt %pr %sap -> %dap %byt %fl %svln %in %out %obyt %ibyt" |head
  2.  
  3. Conn-ID Date first seen Date last seen Date flow received Duration Event XEvent Proto Src IP Addr:Port Dst IP Addr:Port Bytes Input Output Out Byte In Byte
  4. ...
  5. 2014-11-25 20:50:49.958 2014-11-25 20:50:49.958 5921893 2014-11-25 20:50:52.106 0.000 CREATE Ignore TCP 192.168.250.2:34838 -> xx.xxx.xx.xxx:80 0 1 0 23 15 0 0
  6. 2014-11-25 20:50:49.958 2014-11-25 20:50:49.958 5921893 2014-11-25 20:51:51.911 0.000 UPDATE Ignore TCP 192.168.250.2:34838 -> xx.xxx.xx.xxx:80 139 1 0 23 15 6.3 M 139
  7. 2014-11-25 20:51:51.870 2014-11-25 20:51:51.870 5921893 2014-11-25 20:52:57.195 0.000 UPDATE Ignore TCP 192.168.250.2:34838 -> xx.xxx.xx.xxx:80 0 1 0 23 15 6.1 M 0
  8. 2014-11-25 20:52:53.082 2014-11-25 20:52:53.082 5921893 2014-11-25 20:53:55.770 0.000 UPDATE Ignore TCP 192.168.250.2:34838 -> xx.xxx.xx.xxx:80 0 1 0 23 15 6.3 M 0
  9. 2014-11-25 20:53:54.284 2014-11-25 20:53:54.284 5921893 2014-11-25 20:54:58.105 0.000 UPDATE Ignore TCP 192.168.250.2:34838 -> xx.xxx.xx.xxx:80 0 1 0 23 15 6.2 M 0
  10. 2014-11-25 20:54:55.497 2014-11-25 20:54:55.497 5921893 2014-11-25 20:56:01.747 0.000 UPDATE Ignore TCP 192.168.250.2:34838 -> xx.xxx.xx.xxx:80 0 1 0 23 15 6.1 M 0
  11. 2014-11-25 20:55:56.709 2014-11-25 20:55:56.709 5921893 2014-11-25 20:57:02.492 0.000 UPDATE Ignore TCP 192.168.250.2:34838 -> xx.xxx.xx.xxx:80 0 1 0 23 15 6.4 M 0
  12. 2014-11-25 20:56:57.921 2014-11-25 20:56:57.921 5921893 2014-11-25 20:58:02.455 0.000 UPDATE Ignore TCP 192.168.250.2:34838 -> xx.xxx.xx.xxx:80 0 1 0 23 15 6.1 M 0
  13. 2014-11-25 20:57:59.123 2014-11-25 20:57:59.123 5921893 2014-11-25 20:59:02.584 0.000 UPDATE Ignore TCP 192.168.250.2:34838 -> xx.xxx.xx.xxx:80 0 1 0 23 15 6.4 M 0
  14. 2014-11-25 20:59:00.336 2014-11-25 20:59:00.336 5921893 2014-11-25 21:00:02.350 0.000 UPDATE Ignore TCP 192.168.250.2:34838 -> xx.xxx.xx.xxx:80 0 1 0 23 15 6.4 M 0
  15. 2014-11-25 21:00:01.548 2014-11-25 21:00:01.548 5921893 2014-11-25 21:01:03.505 0.000 UPDATE Ignore TCP 192.168.250.2:34838 -> xx.xxx.xx.xxx:80 0 1 0 23 15 6.4 M 0
  16. 2014-11-25 21:01:02.760 2014-11-25 21:01:02.760 5921893 2014-11-25 21:02:04.292 0.000 UPDATE Ignore TCP 192.168.250.2:34838 -> xx.xxx.xx.xxx:80 0 1 0 23 15 6.5 M 0
  17. 2014-11-25 21:02:03.962 2014-11-25 21:02:03.962 5921893 2014-11-25 21:03:06.257 0.000 UPDATE Ignore TCP 192.168.250.2:34838 -> xx.xxx.xx.xxx:80 0 1 0 23 15 6.6 M 0
  18. 2014-11-25 21:03:05.175 2014-11-25 21:03:05.175 5921893 2014-11-25 21:04:07.228 0.000 UPDATE Ignore TCP 192.168.250.2:34838 -> xx.xxx.xx.xxx:80 0 1 0 23 15 6.2 M 0
  19. 2014-11-25 21:04:06.387 2014-11-25 21:04:06.387 5921893 2014-11-25 21:05:10.085 0.000 UPDATE Ignore TCP 192.168.250.2:34838 -> xx.xxx.xx.xxx:80 0 1 0 23 15 6.5 M 0
  20. 2014-11-25 21:05:07.599 2014-11-25 21:05:07.599 5921893 2014-11-25 21:06:11.212 0.000 UPDATE Ignore TCP 192.168.250.2:34838 -> xx.xxx.xx.xxx:80 0 1 0 23 15 6.5 M 0
  21. 2014-11-25 21:06:08.801 2014-11-25 21:06:08.801 5921893 2014-11-25 21:07:11.138 0.000 UPDATE Ignore TCP 192.168.250.2:34838 -> xx.xxx.xx.xxx:80 0 1 0 23 15 6.4 M 0
  22. 2014-11-25 21:07:10.014 2014-11-25 21:07:10.014 5921893 2014-11-25 21:08:16.251 0.000 UPDATE Ignore TCP 192.168.250.2:34838 -> xx.xxx.xx.xxx:80 0 1 0 23 15 6.3 M 0
  23. 2014-11-25 21:08:11.226 2014-11-25 21:08:11.226 5921893 2014-11-25 21:09:17.476 0.000 UPDATE Ignore TCP 192.168.250.2:34838 -> xx.xxx.xx.xxx:80 0 1 0 23 15 6.3 M 0
  24. 2014-11-25 21:09:12.438 2014-11-25 21:09:12.438 5921893 2014-11-25 21:10:16.539 0.000 UPDATE Ignore TCP 192.168.250.2:34838 -> xx.xxx.xx.xxx:80 0 1 0 23 15 6.3 M 0
  25. 2014-11-25 21:10:13.640 2014-11-25 21:10:13.640 5921893 2014-11-25 21:11:19.362 0.000 UPDATE Ignore TCP 192.168.250.2:34838 -> xx.xxx.xx.xxx:80 0 1 0 23 15 6.0 M 0
  26. 2014-11-25 21:11:14.853 2014-11-25 21:11:14.853 5921893 2014-11-25 21:12:16.122 0.000 UPDATE Ignore TCP 192.168.250.2:34838 -> xx.xxx.xx.xxx:80 0 1 0 23 15 6.0 M 0
  27. 2014-11-25 21:12:16.065 2014-11-25 21:12:16.065 5921893 2014-11-25 21:13:22.316 0.000 UPDATE Ignore TCP 192.168.250.2:34838 -> xx.xxx.xx.xxx:80 0 1 0 23 15 5.9 M 0
  28. 2014-11-25 21:13:17.277 2014-11-25 21:13:17.277 5921893 2014-11-25 21:14:17.082 0.000 UPDATE Ignore TCP 192.168.250.2:34838 -> xx.xxx.xx.xxx:80 0 1 0 23 15 5.9 M 0
  29. 2014-11-25 20:50:49.958 2014-11-25 20:50:49.958 5921893 2014-11-25 21:14:17.082 0.000 DELETE 2031 TCP 192.168.250.2:34838 -> xx.xxx.xx.xxx:80 139 1 0 23 15 143.9 M 139
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement